Platform Security Engineer

Arrows Group
Perivale, United Kingdom
2 days ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Compensation
£ 117K

Job location

Perivale, United Kingdom

Tech stack

Amazon Web Services (AWS)
Cloud Computing
Cloud Computing Security
Computer Security
Digital Forensics
Amazon DynamoDB
Github
Identity and Access Management
Intrusion Detection and Prevention
Public Key Infrastructure
Security Information and Event Management
Data Logging
Cloud Platform System
Amazon Web Services (AWS)
Kubernetes
Terraform

Job description

We're supporting a well-established UK technology business as they strengthen their cloud security posture and deliver against the Cyber Assessment Framework (CAF).

This is an ideal opportunity for an experienced Platform Security Engineer or Cloud Security Engineer with deep AWS expertise and hands-on experience delivering security improvements aligned to CAF Level 4 (or equivalent government/regulated security frameworks).

You'll work closely with platform, infrastructure and security teams to assess existing environments, implement security controls, produce compliance evidence, and help drive the organisation through a critical security programme. What You'll Be Doing

  • Lead the implementation of security controls across a large AWS environment
  • Drive delivery against the CAF 4 security framework
  • Improve cloud security posture across identity, networking, logging and resilience
  • Produce technical documentation and compliance evidence for senior stakeholders
  • Review and strengthen supplier and cloud security governance
  • Implement security best practices across IAM, MFA, networking and encryption
  • Enhance logging, monitoring, alerting and threat detection capabilities
  • Improve backup, recovery and incident response processes
  • Work alongside platform engineering teams to embed security into cloud infrastructure
  • Provide regular progress updates to senior stakeholders throughout the engagement

Requirements

  • Strong experience as a Platform Security Engineer, Cloud Security Engineer or Security-Focused Platform Engineer
  • Expert-level AWS security knowledge
  • Previous delivery against Cyber Assessment Framework (CAF) controls (CAF 4 experience highly desirable)
  • Strong understanding of cloud identity and access management (IAM)
  • Experience securing Kubernetes/EKS environments
  • Cloud networking and segmentation expertise
  • CloudTrail, GuardDuty, VPC Flow Logs and security monitoring
  • Infrastructure security and security architecture
  • Experience producing compliance evidence and technical security documentation
  • Comfortable engaging with senior technical and non-technical stakeholders

Nice to Have

  • GCP exposure
  • SIEM implementation experience
  • Incident response and digital forensics knowledge
  • Experience within regulated or highly secure environments
  • Terraform or Infrastructure as Code experience

Tech Stack

  • AWS
  • IAM
  • CAF 4
  • EKS/Kubernetes
  • CloudTrail
  • GuardDuty
  • VPC Flow Logs
  • Cloud Networking
  • MFA
  • TLS/PKI
  • DynamoDB
  • RDS
  • GitHub
  • Terraform (desirable)

Apply for this position